Rosetta Intel
Datasets/KEV CatalogThreat ActorsAttack Surface
Rosetta Lab ↗Blur Horizon LLC
Datasets

KEV Catalog

CISA, queryable

Known exploited vulnerabilities as a queryable table — by CVE, vendor or product.

1685 entries·352 Ransomware·Updated 2026-08-27

CWE-276Definition on MITRE ↗Clear

4 results

CVE-2024-55956
2024-12-17
Cleo Multiple Products Unauthenticated File Upload VulnerabilityRansomware
Cleo

Cleo Harmony, VLTrader, and LexiCom, which are managed file transfer products, contain an unrestricted file upload vulnerability that could allow an unauthenticated user to import and execute arbitrary bash or PowerShell commands on the host system by leveraging the default settings of the Autorun directory.

CWE-276
Refssupport.cleo.comnvd.nist.gov
Federal remediation due 2025-01-07
CVE-2024-51378
2024-12-04
CyberPanel Incorrect Default Permissions VulnerabilityRansomware
CyberPersons

CyberPanel contains an incorrect default permissions vulnerability that allows for authentication bypass and the execution of arbitrary commands using shell metacharacters in the statusfile property.

CWE-276
Refscyberpanel.netnvd.nist.gov
Federal remediation due 2024-12-25
CVE-2024-51567
2024-11-07
CyberPanel Incorrect Default Permissions VulnerabilityRansomware
CyberPersons

CyberPanel contains an incorrect default permissions vulnerability that allows a remote, unauthenticated attacker to execute commands as root.

CWE-276
Refscyberpanel.netnvd.nist.gov
Federal remediation due 2024-11-28
CVE-2022-22948
2024-07-17
VMware vCenter Server Incorrect Default File Permissions Vulnerability
VMware

VMware vCenter Server contains an incorrect default file permissions vulnerability that allows a remote, privileged attacker to gain access to sensitive information.

CWE-276
Refsvmware.comnvd.nist.gov
Federal remediation due 2024-08-07